diff options
author | Daniel P. Berrangé <berrange@redhat.com> | 2019-03-07 12:18:37 +0000 |
---|---|---|
committer | Eduardo Habkost <ehabkost@redhat.com> | 2019-03-20 12:18:15 -0300 |
commit | 174a78a8a5c0cf421236fe14efc5559717f050df (patch) | |
tree | b2778e1cc5233f94f19ba63fd5ca606965526d27 /docs/qemu-cpu-models.texi | |
parent | bb4928c7cafe50ab2137a0034e350ef1bfa044d9 (diff) | |
download | qemu-174a78a8a5c0cf421236fe14efc5559717f050df.zip qemu-174a78a8a5c0cf421236fe14efc5559717f050df.tar.gz qemu-174a78a8a5c0cf421236fe14efc5559717f050df.tar.bz2 |
docs: clarify that spec-ctrl is only needed for Spectre v2
The docs currently say that the spec-ctrl feature is needed for both
Spectre variants, but it is only used to address Spectre v2. Also
remove the note about retpolines. The guest OS is usually treated
as a blackbox from host mgmt pov, so it won't have knowledge about
use of retpolines and thus should unconditionally expose spec-ctrl,
allowing the guest to decide whether to use it or not.
Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
Message-Id: <20190307121838.6345-2-berrange@redhat.com>
Signed-off-by: Eduardo Habkost <ehabkost@redhat.com>
Diffstat (limited to 'docs/qemu-cpu-models.texi')
-rw-r--r-- | docs/qemu-cpu-models.texi | 6 |
1 files changed, 2 insertions, 4 deletions
diff --git a/docs/qemu-cpu-models.texi b/docs/qemu-cpu-models.texi index 1b72584..0ce5288 100644 --- a/docs/qemu-cpu-models.texi +++ b/docs/qemu-cpu-models.texi @@ -158,8 +158,7 @@ support this feature. @item @code{spec-ctrl} -Required to enable the Spectre (CVE-2017-5753 and CVE-2017-5715) fix, -in cases where retpolines are not sufficient. +Required to enable the Spectre v2 (CVE-2017-5715) fix. Included by default in Intel CPU models with -IBRS suffix. @@ -249,8 +248,7 @@ included if using "Host passthrough" or "Host model". @item @code{ibpb} -Required to enable the Spectre (CVE-2017-5753 and CVE-2017-5715) fix, -in cases where retpolines are not sufficient. +Required to enable the Spectre v2 (CVE-2017-5715) fix. Included by default in AMD CPU models with -IBPB suffix. |